CVE-2026-56292: Joomla Extension - acymailing.com - SQL Injection in AcyMailing extension < 10.11.1
Published Jul 9, 2026
·Updated
Joomla Extension - acymailing.com - SQL Injection in AcyMailing extension < 10.11.1 - A SQLi vulnerability in AcyMailing component < 10.11.1 for Joomla was discovered. Exploiting this flaw can lead to unauthorized database access and data leakage.
Affected Software
2 affected components
Joomla Extension - acymailing.com - AcyMailing<10.11.1
AcyMailing Acymailing Joomla\!>=6.0.0<10.11.1
Event History
Jul 9, 2026
CVE Published
via MITRE·01:49 PM
Data Sourced
via MITRE·01:49 PM
DescriptionWeakness
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-56292?
CVE-2026-56292 has a critical severity rating of 9.2.
2
How do I fix CVE-2026-56292?
You can fix CVE-2026-56292 by upgrading the AcyMailing extension to version 10.11.1 or later.
3
What type of vulnerability is CVE-2026-56292?
CVE-2026-56292 is an SQL Injection vulnerability affecting the AcyMailing component for Joomla.
4
What are the consequences of exploiting CVE-2026-56292?
Exploiting CVE-2026-56292 can lead to unauthorized database access and potential data leakage.
5
When was CVE-2026-56292 published?
CVE-2026-56292 was published on July 9, 2026.